CVE-2007-1765 EXPLOIT
9.3
HIGH · CVSS 2.0 · EPSS 54.6% (pctl 99)
Patch early
A public exploit exists.
Description
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code or cause a denial of service (persistent reboot) via a malformed ANI file, which results in memory corruption when processing cursors, animated cursors, and icons, a similar issue to CVE-2005-0416, as originally demonstrated using Internet Explorer 6 and 7. NOTE: this issue might be a duplicate of CVE-2007-0038; if so, then use CVE-2007-0038 instead of this identifier.
Scoring
| CVSS | 9.3 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
| EPSS | 54.6% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2007-03-30 |
| Last modified | 2026-06-16 |
Affected (10)
| Vendor | Product |
|---|---|
| avaya | definity one media server |
| avaya | ip600 media servers |
| avaya | s3400 |
| avaya | s8100 |
| microsoft | ie |
| microsoft | internet explorer |
| microsoft | windows 2000 |
| microsoft | windows 2003 server |
| microsoft | windows vista |
| microsoft | windows xp |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Windows - ANI LoadAniIcon() Chunk Size Stack Buffer Overflow (SMTP) (MS07-017) (Metasploit) | 2010-09-20 |
| exploit-db | Microsoft Windows - Animated Cursor Stack Overflow | 2007-06-07 |
| exploit-db | Microsoft Windows - Animated Cursor '.ani' Local Overflow | 2007-04-09 |
| exploit-db | Microsoft Windows Explorer - '.ANI' File Denial of Service | 2007-04-08 |
| exploit-db | Microsoft Windows - Animated Cursor '.ani' Universal Generator | 2007-04-03 |
| exploit-db | Microsoft Windows - Animated Cursor '.ani' Local Overflow (Hardware DEP) | 2007-04-03 |
| exploit-db | Microsoft Windows - Animated Cursor '.ani' Local Buffer Overflow | 2007-04-02 |
| exploit-db | Microsoft Windows XP/Vista - Animated Cursor '.ani' Remote Overflow | 2007-04-01 |
| exploit-db | Microsoft Windows XP - Animated Cursor '.ani' Remote Overflow (2) | 2007-04-01 |
| exploit-db | Microsoft Windows - Animated Cursor '.ani' Remote (eeye patch Bypass) | 2007-04-01 |
| exploit-db | Microsoft Windows - Animated Cursor '.ani' Local Stack Overflow | 2007-03-31 |
References
- http://asert.arbornetworks.com/2007/03/any-ani-file-could-infect-you/
- http://research.eeye.com/html/alerts/zeroday/20070328.html
- http://vil.nai.com/vil/content/v_141860.htm
- http://www.avertlabs.com/research/blog/?p=230
- http://www.avertlabs.com/research/blog/?p=233
- http://www.microsoft.com/technet/security/advisory/935423.mspx
- http://www.securityfocus.com/archive/1/464287/100/0/threaded
- http://www.securityfocus.com/archive/1/464345/100/0/threaded
- http://www.securityfocus.com/bid/23194
- http://www.securitytracker.com/id?1017827
- http://www.vupen.com/english/advisories/2007/1151
- http://asert.arbornetworks.com/2007/03/any-ani-file-could-infect-you/
- http://research.eeye.com/html/alerts/zeroday/20070328.html
- http://vil.nai.com/vil/content/v_141860.htm
- http://www.avertlabs.com/research/blog/?p=230
- http://www.avertlabs.com/research/blog/?p=233
- http://www.microsoft.com/technet/security/advisory/935423.mspx
- http://www.securityfocus.com/archive/1/464287/100/0/threaded
- http://www.securityfocus.com/archive/1/464345/100/0/threaded
- http://www.securityfocus.com/bid/23194
→ the Explorer · watch your stack · NVD